Legal claims defining the scope of protection, as filed with the USPTO.
1. A backup agent for facilitating restorations of virtual machines, comprising: a persistent storage that stores backup/restoration policies; and a backup/restoration policy updater programmed to: identify a change of a label associated with a portion of data of a production host, wherein the label specifies a characteristic ascribed to the data by a client that utilizes services provided by a virtual machine of the virtual machines, wherein the characteristic indicates a level of importance of the portion of the data to the client; in response to identifying the change in the label: perform a threat analysis, using the changed label, of a virtual machine of the virtual machines to determine a new security policy for the virtual machine; and update a policy of the backup/restoration policies associated with the virtual machine based on the new security policy, wherein the updated policy specifies that a first quantity of computing resources are to be used to generate a backup of the portion of the data, the policy specifies that a second quantity of the computing resource are to be used to generate the backup of the portion of the data, and the first quantity is different from the second quantity.
2. The backup agent of claim 1 , wherein the backup/restoration policy updater is further programmed to: perform a backup of the virtual machine using the updated policy to store a backup of the virtual machine in a backup storage of a plurality of backup storages.
3. The backup agent of claim 1 , wherein the backup/restoration policy updater is further programmed to: perform a restoration of the virtual machine using the updated policy to restore the virtual machine.
4. The backup agent of claim 1 , wherein performing the threat analysis of the virtual machine to determine the new security policy for the virtual machine comprises: obtaining a new virtual machine tag for the virtual machine based on the change of the label associated with the data of the production host.
5. The backup agent of claim 1 , wherein the portion of the data is a file-system block, wherein a second file-system block is labeled with a second label ascribing a second characteristic by the client that is different from the characteristic.
6. The backup agent of claim 1 , wherein the first quantity of computing resources is based on level of importance of the portion of the data to the client.
7. The backup agent of claim 1 , wherein performing the threat analysis also uses a second label associated with the portion of data to determine the new security policy.
8. The backup agent of claim 2 , wherein the updated policy specifies a first number of users that are credentialed to initiate performance of the backup, the policy specifies a second number of users that are credentialed to initiate performance of the backup, and the first number is smaller than the second number.
9. The backup agent of claim 2 , wherein the updated policy specifies a first number of target storage locations for storage of the backup, the policy specifies a second number of storage locations for storage of the backup, and the first number is smaller than the second number.
10. The backup agent of claim 3 , wherein performing the restoration of the virtual machine returns the virtual machine to a prior state.
11. The backup agent of claim 4 , wherein the label associated with the data of the production host is set by a user of the client of the virtual machine.
12. The backup agent of claim 4 , wherein performing the threat analysis of the virtual machine to determine the new security policy for the virtual machine further comprises: obtaining a new security classification for the virtual machine based on the obtained new virtual machine tag.
13. The backup agent of claim 12 , wherein performing the threat analysis of the virtual machine to determine the new security policy for the virtual machine further comprises: identifying a security policy corresponding to the obtained new security classification.
14. The backup agent of claim 13 , wherein the security policy specifies a limited set of users authorized to initiate performance of a restoration of the virtual machine.
15. The backup agent of claim 7 , wherein performing the threat analysis also uses a third label associated with the portion of data to determine the new security policy, wherein the third label is ascribed by a second client.
16. A method for facilitating restorations of virtual machines using backup/restoration policies, comprising: identifying a change of a label associated with a portion of data of a production host that hosts at least one virtual machine of the virtual machines, wherein the label specifies a characteristic ascribed to the data by a client that utilizes services provided by the virtual machine of the virtual machines, wherein the characteristic indicates a level of importance of the portion of the data to the client; in response to identifying the change in the label: performing a threat analysis, using the changed label, of a virtual machine of the virtual machines associated with the portion of data to determine a new security policy for the virtual machine; and updating a policy of the backup/restoration policies associated with the virtual machine based on the new security policy, wherein the updated policy specifies that a first quantity of computing resources are to be used to generate a backup of the portion of the data, the policy specifies that a second quantity of the computing resource are to be used to generate the backup of the portion of the data, and the first quantity is different from the second quantity.
17. The method of claim 16 , wherein performing the threat analysis also uses a second label associated with the portion of data to determine the new security policy.
18. A non-transitory computer readable medium comprising computer readable program code, which when executed by a computer processor enables the computer processor to perform a method for facilitating restorations of virtual, the method comprising: identifying a change of a label associated with a portion of data of a production host that hosts at least one virtual machine of the virtual machines, wherein the label specifies a characteristic ascribed to the data by a client that utilizes services provided by the virtual machine of the virtual machines, wherein the characteristic indicates a level of importance of the portion of the data to the client; in response to identifying the change in the label: performing a threat analysis, using the changed label, of a virtual machine of the virtual machines associated with the data to determine a new security policy for the virtual machine; and updating a policy of the backup/restoration policies associated with the virtual machine based on the new security policy, wherein the updated policy specifies that a first quantity of computing resources are to be used to generate a backup of the portion of the data, the policy specifies that a second quantity of the computing resource are to be used to generate the backup of the portion of the data, and the first quantity is different from the second quantity.
19. The non-transitory computer readable medium of claim 18 , wherein performing the threat analysis also uses a second label associated with the portion of data to determine the new security policy.
Unknown
June 8, 2021
Browse 5M+ US patents with plain-English claim translations and AI-generated analysis.